Perform a dedicated security vulnerability review of code, configuration, trust boundaries, or agent workflows, tracing untrusted input and privilege paths to exploitable sinks. Use when security risk is the requested deliverable — not merely because code under ordinary review touches auth, tokens, or secrets.